Security risk assessment methodology for communities (RAM-C)

被引:1
|
作者
Jaeger, C [1 ]
机构
[1] Sandia Natl Labs, Secur Syst & Technol Ctr, Albuquerque, NM 87185 USA
关键词
D O I
10.1109/CCST.2004.1405377
中图分类号
TP39 [计算机的应用];
学科分类号
081203 ; 0835 ;
摘要
Sandia National Laboratories (SNL) has developed a number of security risk assessment methodologies (RAMs) for various infrastructures including dams, water systems, electrical transmission, chemical facilities and communities. All of these RAMs consider potential malevolent attacks from different threats, possible undesired events and consequences and determine potential adversary success. They focus on the assessment of these infrastructures to help identify security weaknesses and develop measures to help mitigate the consequences from possible adversary attacks. This paper will focus on RAM-G, the security risk assessment methodology for communities. There are many reasons for a community to conduct a security risk assessment. They include: providing a way to identify vulnerabilities, helping a community to be better prepared in the event of an adversary attack, providing justification for resources to address identified vulnerabilities and planning for future projects. The RAM-C process is a systematic, risk-based approach to assess vulnerabilities and make decisions based on risk. It has provided valuable information to community planners in making security risk decisions.
引用
收藏
页码:106 / 110
页数:5
相关论文
共 50 条
  • [1] Security risk assessment methodology for communities (RAM-C)
    Jaeger, C
    IEEE AEROSPACE AND ELECTRONIC SYSTEMS MAGAZINE, 2005, 20 (06) : 15 - 17
  • [2] Security risk assessment methodology for communities (RAM-C™)
    Jaeger, C
    PROBABILISTIC SAFETY ASSESSMENT AND MANAGEMENT, VOL 1- 6, 2004, : 1328 - 1332
  • [3] The Security Risk Assessment Methodology
    Liu, Chunlin
    Tan, Chong-Kuan
    Fang, Yea-Saen
    Lok, Tat-Seng
    INTERNATIONAL SYMPOSIUM ON SAFETY SCIENCE AND ENGINEERING IN CHINA, 2012, 2012, 43 : 600 - 609
  • [4] Risk Assessment Methodology for Dams (RAM-DSM)
    Matalucci, RV
    PROBABILISTIC SAFETY ASSESSMENT AND MANAGEMENT, VOL I AND II, PROCEEDINGS, 2002, : 169 - 176
  • [5] A Quantitative Methodology for Cloud Security Risk Assessment
    Basu, Srijita
    Sengupta, Anirban
    Mazumdar, Chandan
    CLOSER: PROCEEDINGS OF THE 7TH INTERNATIONAL CONFERENCE ON CLOUD COMPUTING AND SERVICES SCIENCE, 2017, : 92 - 103
  • [6] Risk assessment methodology for electric power transmission, RAM-TSM
    Biringer, B
    38TH ANNUAL 2004 INTERNATIONAL CARNAHAN CONFERENCE ON SECURITY TECHNOLOGY, PROCEEDINGS, 2004, : 99 - 105
  • [7] CIIP-ram - A security risk analysis methodology for critical information infrastructure protection
    Busuttil, TB
    Warren, AJ
    INFORMATION SECURITY MANAGEMENT, EDUCATION AND PRIVACY, 2004, 148 : 33 - 49
  • [8] Security Risk Assessment Methodology for the petroleum and petrochemical industries
    Moore, David A.
    JOURNAL OF LOSS PREVENTION IN THE PROCESS INDUSTRIES, 2013, 26 (06) : 1685 - 1689
  • [9] A Formal Methodology for Enterprise Information Security Risk Assessment
    Bhattacharjee, Jaya
    Sengupta, Anirban
    Mazumdar, Chandan
    2013 INTERNATIONAL CONFERENCE ON RISKS AND SECURITY OF INTERNET AND SYSTEMS (CRISIS), 2013,
  • [10] Methodology of quantitative risk assessment for information system security
    Lin, MQ
    Wang, QM
    Li, JH
    COMPUTATIONAL INTELLIGENCE AND SECURITY, PT 2, PROCEEDINGS, 2005, 3802 : 526 - 531